Home Malware Programs Rogue Anti-Spyware Programs PC Security 2011

PC Security 2011

Posted: January 6, 2011

Threat Metric

Threat Level: 10/10
Infected PCs: 126
First Seen: January 5, 2011
Last Seen: August 17, 2022
OS(es) Affected: Windows

ScreenshotPC Security 2011 is a fake computer security program. PC Security 2011 puts a PC at a considerable risk for damages. The creators of PC Security 2011 take advantage of its name by marketing it as a legitimate security tool for PC which it is not. Because the name 'PC Security 2011' closely resembles other legitimate products, it can easily be mistaken for a program that has the capability to detect and remove computer parasites. PC Security 2011 has none of these functions and should not even be considered as an option if a computer user fears that their system is infected with malware.

PC Security 2011 uses aggressive methods to force computer users into thinking that they have no option other than to purchase a full version of PC Security 2011. This is done through bogus popup alert messages that usually attempt to warn users of a detected threat or viruses. None of the threats states in PC Security 2011's popup alerts are actually present on the system. PC Security 2011 was found to be a newer variation of another rogue anti-spyware program called System Pro 2011.

ScreenshotScreenshotScreenshotScreenshotScreenshotScreenshotScreenshotScreenshotScreenshotScreenshotScreenshotScreenshotScreenshot

Aliases

Trojan-Spy.Win32.SpyEyes [Ikarus]Malware/Win32.Generic [AhnLab-V3]TR/Injector.CS [AntiVir]PUA.Packed.PECompact-1 [ClamAV]Suspicious File [eSafe]a variant of Win32/Injector.DUX [NOD32]Artemis!4749904D001C [McAfee](Suspicious) - DNAScan [CAT-QuickHeal]TrojWare.Win32.Trojan.Agent.Gen [Comodo]a variant of Win32/Adware.SystemPro2011.A [NOD32]

Technical Details

File System Modifications

Tutorials: If you wish to learn how to remove malware components manually, you can read the tutorials on how to find malware, kill unwanted processes, remove malicious DLLs and delete other harmful files. Always be sure to back up your PC before making any changes.

The following files were created in the system:



%ALLUSERSPROFILE%\PC Security 2011\PC2011.exe File name: PC2011.exe
Size: 492.03 KB (492032 bytes)
MD5: 98b58431fa4825d1afc3c47b926d00d9
Detection count: 47
File type: Executable File
Mime Type: unknown/exe
Path: %ALLUSERSPROFILE%\PC Security 2011
Group: Malware file
Last Updated: August 17, 2022
%WINDIR%\system32\svrwsc.exe File name: svrwsc.exe
Size: 69.12 KB (69120 bytes)
MD5: 4749904d001c243a27a7984791b79222
Detection count: 26
File type: Executable File
Mime Type: unknown/exe
Path: %WINDIR%\system32
Group: Malware file
Last Updated: January 6, 2011
%USERPROFILE%\Start Menu\Programs\Startup\PC2011.lnk File name: PC2011.lnk
Size: 699B (699 bytes)
MD5: 391bb16b454bb1f8e9883984565696e4
Detection count: 9
File type: Shortcut
Mime Type: unknown/lnk
Path: %USERPROFILE%\Start Menu\Programs\Startup
Group: Malware file
Last Updated: January 6, 2011

Additional Information

The following directories were created:
%ALLUSERSPROFILE%\PC Security 2011%AppData%\PC Security 2011%AppData%\Uninstall_Security%ProgramFiles%\PC Security 2011
The following messages's were detected:
# Message
1FlyAgent.F backdoor has been detected on your PC.
A Trojan that has backdoor capabilities.
It may perform certain actions based on the commands of a remote attacker. Commonly steals user credentials
2New threads were found
There are 4 undeleted threads. To remove all threads click to Remove All at main window.
3Scanning is complete. 4 infections were found, would you like to remove all?
Sdbot.add
DvFuCa
Angerfire
4Stealth intrusion!
Infection detected in the background. Your computer is now attacked by spyware and rogue software. Eliminate the infection safely, perform a security scan and deletion now.

One Comment

  • Amanda says:

    Could you guys give more specific directions on how to find those files? It took me a while to find those registry keys.

Loading...